Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
disclosure management vulnerabilities and exploits
(subscribe to this query)
4.4
CVSSv3
CVE-2016-7397
The Frontend component in Sophos UTM with firmware 9.405-5 and previous versions allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.
Sophos Unified Threat Management Software
4.4
CVSSv3
CVE-2016-7442
The Frontend component in Sophos UTM with firmware 9.405-5 and previous versions allows local administrators to obtain sensitive password information by reading the "value" field of the proxy user settings in "system settings / scan settings / anti spam" confi...
Sophos Unified Threat Management Software
5.4
CVSSv3
CVE-2016-9979
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.1.0.0
Ibm Curam Social Program Management 6.1.0.3
5.4
CVSSv3
CVE-2016-6021
IBM Emptoris Strategic Supply Management Platform 10.0 and 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a ...
Ibm Emptoris Strategic Supply Management 10.0.2.4
Ibm Emptoris Strategic Supply Management 10.0.2.5
Ibm Emptoris Strategic Supply Management 10.0.2.6
Ibm Emptoris Strategic Supply Management 10.0.2.7
Ibm Emptoris Strategic Supply Management 10.1.0.3
Ibm Emptoris Strategic Supply Management 10.1.0.4
Ibm Emptoris Strategic Supply Management 10.1.0.5
Ibm Emptoris Strategic Supply Management 10.1.0.6
Ibm Emptoris Strategic Supply Management 10.1.0.7
Ibm Emptoris Strategic Supply Management 10.0.1.0
Ibm Emptoris Strategic Supply Management 10.0.1.1
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.1.4
Ibm Emptoris Strategic Supply Management 10.0.2.12
Ibm Emptoris Strategic Supply Management 10.0.2.13
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.0.2.15
Ibm Emptoris Strategic Supply Management 10.1.1.1
Ibm Emptoris Strategic Supply Management 10.1.1.2
Ibm Emptoris Strategic Supply Management 10.1.1.3
Ibm Emptoris Strategic Supply Management 10.1.1.4
Ibm Emptoris Strategic Supply Management 10.0.0.1
5.4
CVSSv3
CVE-2017-1740
IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure...
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.9
Ibm Curam Social Program Management 6.0.5
Ibm Curam Social Program Management 6.0.5.1
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.8
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.1.1.3
Ibm Curam Social Program Management 6.1.1.4
Ibm Curam Social Program Management 6.1.1.5
Ibm Curam Social Program Management 6.1.1.6
Ibm Curam Social Program Management 6.1.0.4
Ibm Curam Social Program Management 6.1.1.0
Ibm Curam Social Program Management 6.1.1.2
Ibm Curam Social Program Management 6.1.0.0
Ibm Curam Social Program Management 6.1.0.1
Ibm Curam Social Program Management 6.1.0.2
5.4
CVSSv3
CVE-2016-6121
IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a tru...
Ibm Emptoris Strategic Supply Management 10.0.0.0
Ibm Emptoris Strategic Supply Management 10.0.2.5
Ibm Emptoris Strategic Supply Management 10.0.2.6
Ibm Emptoris Strategic Supply Management 10.0.2.7
Ibm Emptoris Strategic Supply Management 10.0.2.8
Ibm Emptoris Strategic Supply Management 10.1.0.2
Ibm Emptoris Strategic Supply Management 10.1.0.3
Ibm Emptoris Strategic Supply Management 10.1.0.4
Ibm Emptoris Strategic Supply Management 10.1.0.5
Ibm Emptoris Strategic Supply Management 10.1.0.6
Ibm Emptoris Strategic Supply Management 10.1.1.7
Ibm Emptoris Strategic Supply Management 10.1.1.8
Ibm Emptoris Strategic Supply Management 10.1.1.9
Ibm Emptoris Strategic Supply Management 10.1.1.10
Ibm Emptoris Strategic Supply Management 10.0.1.1
Ibm Emptoris Strategic Supply Management 10.0.1.2
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.1.4
Ibm Emptoris Strategic Supply Management 10.0.2.13
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.0.2.15
Ibm Emptoris Strategic Supply Management 10.0.2.16
NA
CVE-2008-2217
Directory traversal vulnerability in cm/graphie.php in Content Management System 0.6.1 for Phprojekt allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the cm_imgpath parameter.
Mario Valdez Content Management System 0.6.1
1 EDB exploit
5.4
CVSSv3
CVE-2017-1106
IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted se...
Ibm Curam Social Program Management 5.2
Ibm Curam Social Program Management 6.0
Ibm Curam Social Program Management 6.0.0
Ibm Curam Social Program Management 6.0.4.6
Ibm Curam Social Program Management 6.0.4.7
Ibm Curam Social Program Management 6.0.4.8
Ibm Curam Social Program Management 6.0.4.9
Ibm Curam Social Program Management 6.0.4.0
Ibm Curam Social Program Management 6.0.4.1
Ibm Curam Social Program Management 6.0.4.3
Ibm Curam Social Program Management 6.0.4.5
Ibm Curam Social Program Management 6.0.4.2
Ibm Curam Social Program Management 6.0.4.4
Ibm Curam Social Program Management 6.0.5.3
Ibm Curam Social Program Management 6.0.5.4
Ibm Curam Social Program Management 6.0.5.5
Ibm Curam Social Program Management 6.0.5.6
Ibm Curam Social Program Management 6.0.5.10
Ibm Curam Social Program Management 6.0.5.0
Ibm Curam Social Program Management 6.0.5.2
Ibm Curam Social Program Management 6.0.5.7
Ibm Curam Social Program Management 6.0.5.9
NA
CVE-2012-4933
The rtrlet web application in the Web Console in Novell ZENworks Asset Management (ZAM) 7.5 uses a hard-coded username of Ivanhoe and a hard-coded password of Scott for the (1) GetFile_Password and (2) GetConfigInfo_Password operations, which allows remote malicious users to obta...
Novell Zenworks Asset Management 7.5
5.4
CVSSv3
CVE-2016-6019
IBM Emptoris Strategic Supply Management Platform 10.0.0.x up to and including 10.1.1.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credenti...
Ibm Emptoris Strategic Supply Management 10.0.0.1
Ibm Emptoris Strategic Supply Management 10.0.0.2
Ibm Emptoris Strategic Supply Management 10.0.0.3
Ibm Emptoris Strategic Supply Management 10.0.2.8
Ibm Emptoris Strategic Supply Management 10.0.2.9
Ibm Emptoris Strategic Supply Management 10.0.2.10
Ibm Emptoris Strategic Supply Management 10.0.2.11
Ibm Emptoris Strategic Supply Management 10.1.0.6
Ibm Emptoris Strategic Supply Management 10.1.0.7
Ibm Emptoris Strategic Supply Management 10.1.0.8
Ibm Emptoris Strategic Supply Management 10.1.0.9
Ibm Emptoris Strategic Supply Management 10.1.1.9
Ibm Emptoris Strategic Supply Management 10.1.1.10
Ibm Emptoris Strategic Supply Management 10.0.0.0
Ibm Emptoris Strategic Supply Management 10.0.1.1
Ibm Emptoris Strategic Supply Management 10.0.1.3
Ibm Emptoris Strategic Supply Management 10.0.2.5
Ibm Emptoris Strategic Supply Management 10.0.2.7
Ibm Emptoris Strategic Supply Management 10.0.2.12
Ibm Emptoris Strategic Supply Management 10.0.2.14
Ibm Emptoris Strategic Supply Management 10.1.0.2
Ibm Emptoris Strategic Supply Management 10.1.0.4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-3400
deserialization
CVE-2024-21788
CVE-2023-42433
CVE-2024-21841
CVE-2024-22095
local file inclusion
memory leak
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »